PF default to deny
Peter N. M. Hansteen
peter at bgnett.no
Mon Sep 26 10:23:31 PDT 2005
Matt Juszczak <matt at atopia.net> writes:
> 2) Is there a way to set pf to default to deny?
"block all" as your first filtering rule, followed by explicit pass
rules for the stuff you want to pass.
I thought most of the howtoish docs out there recommended that approach,
but here at least is one that does - http://www.bgnett.no/~peter/pf/
--
Peter N. M. Hansteen, member of the first RFC 1149 implementation team
http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/
"First, we kill all the spammers" The Usenet Bard, "Twice-forwarded tales"
More information about the freebsd-questions
mailing list